Unrated severityNVD Advisory· Published Jan 8, 2008· Updated Apr 23, 2026
CVE-2007-5965
CVE-2007-5965
Description
QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed service, or trick a service into accepting an invalid client certificate for a user.
Affected products
3cpe:2.3:a:trolltech:qsslsocket:4.3.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:trolltech:qsslsocket:4.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:trolltech:qsslsocket:4.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:trolltech:qsslsocket:4.3.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- trolltech.com/company/newsroom/announcements/press.2007-12-21.2182567220nvdPatch
- secunia.com/advisories/28228nvdVendor Advisory
- secunia.com/advisories/28321nvdVendor Advisory
- secunia.com/advisories/28636nvd
- secunia.com/advisories/28999nvd
- www.mandriva.com/security/advisoriesnvd
- www.novell.com/linux/security/advisories/suse_security_summary_report.htmlnvd
- www.securityfocus.com/bid/27112nvd
- www.ubuntu.com/usn/usn-579-1nvd
- www.vupen.com/english/advisories/2008/0018nvd
- bugzilla.redhat.com/show_bug.cginvd
- www.redhat.com/archives/fedora-package-announce/2008-January/msg00005.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-January/msg00131.htmlnvd
News mentions
0No linked articles in our index yet.